This Privacy Policy describes how FireGuy.NET (“we,” “our,” or “us”) collects, uses, stores, and protects information in connection with the Genogram Builder application (“Service” or “App”). By using the Service, you agree to the practices described here. If you do not agree, please do not use the Service.
1. Information We Collect
1.1 Information you provide
- Account data: When you register with email and password, we collect email address, name (if provided), and a hashed password. We use this to create and secure your account and to communicate with you about the Service (e.g., email verification, password reset). When you sign in with Google or Sign in with Apple, we receive from the provider a unique identifier, your email address, and optionally your name. We use this information to create or link your account so you can sign in without a password. That sign-in is handled by Google or Apple; their processing of your data is governed by Google’s Privacy Policy and Apple’s Privacy Policy respectively. We store only the identifier and the email/name we receive to operate your account.
- Genogram and content data: Data you create in the App—genogram structure (people, relationships, shapes, links, annotations), names, labels, and any text you add—is stored on our servers to provide save, load, and (if you choose) sharing features. This data may include sensitive or health-related information you choose to record; we treat it as confidential and use it only to operate the Service.
- Communications: If you contact us (e.g., at genogram@fireguy.net), we may keep your email and correspondence to respond and improve the Service.
1.2 Information collected automatically
- Log and usage data: Our servers may log standard technical information such as IP address, browser type, request timestamps, and referring URLs. This helps us operate, secure, and debug the Service and may be retained for a limited period.
- Cookies and similar technologies: We use session cookies (and similar mechanisms) necessary for authentication and security (e.g., keeping you logged in, CSRF protection). These are essential for the Service to function. On most pages we use Google Tag Manager to load analytics and related tools (e.g., Google Analytics). We do not load Google Tag Manager or Google Analytics on the genogram editor page (the in-app canvas where you view or edit a diagram), so those tools do not run in that context while you work with genogram content. On other pages, those tools may set their own cookies and collect information such as pages visited, device and browser type, and approximate location (e.g., country) to help us understand how the Service is used and improve it. Data collected by these tools is processed by Google in accordance with Google’s Privacy Policy. You can control or opt out of certain Google Analytics advertising features via Google’s opt-out tools or your browser settings.
1.3 What we do not do
We do not sell your personal information. We do not use your genogram content or account data for advertising, and we do not share it with third parties for their marketing.
2. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the Service (e.g., saving and loading genograms, account management, email verification, password reset);
- Authenticate you and protect the security of the Service (e.g., session management, CSRF protection);
- Communicate with you about your account or the Service (e.g., verification emails, password reset, important notices);
- Comply with applicable law, respond to legal process, or protect our rights and safety;
- Analyze usage in an aggregated, non-personally-identifying way to improve performance and features.
3. Data Storage and Security
Your data is stored on servers we or our hosting providers operate. We use industry-standard measures to protect your data, including encryption in transit (HTTPS) and secure handling of passwords (hashing). Despite our efforts, no method of transmission or storage over the Internet is completely secure; we cannot guarantee absolute security and you use the Service at your own risk with respect to data security.
4. Sharing and Disclosure
We do not sell your personal information. We may share information only in the following circumstances:
- With your consent: For example, when you mark a genogram as “public,” others may view it (according to the functionality we provide).
- Service providers: We may use third-party providers (e.g., hosting, email delivery, analytics such as Google Tag Manager and Google Analytics on pages other than the genogram editor) that process data on our behalf under contractual obligations to protect and use data only as we instruct. If you use Sign in with Google or Sign in with Apple, those providers process your authentication and we receive limited profile data (identifier, email, name) from them to create or link your account.
- Legal requirements: We may disclose information if required by law, court order, or government request, or when we believe in good faith that disclosure is necessary to protect our rights, your safety, or the safety of others, or to investigate fraud or security issues.
- Business transfers: In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction, subject to the same privacy commitments.
5. Data Retention
We retain your account and genogram data for as long as your account is active. Because the Service is free, we automatically delete accounts that have been inactive for more than 365 days: we send one warning email to your registered address when your account has been inactive for 335 days, and if you do not sign in within 30 days of that email, we permanently delete your account and all associated genogram data. If you delete your account yourself (via the in-app option), we will delete or anonymize your account and associated genogram data in accordance with our data retention practices. Server logs and backup copies may be retained for a limited period for security and operational purposes before being purged. Verification and password-reset tokens expire after a short period (e.g., 24 hours or 1 hour) and are then removed.
6. Your Rights and Choices
Depending on your location, you may have certain rights regarding your personal data:
- Access and portability: You can access your genogram data through the Service and export it (e.g., PDF, PNG, JPG, GEDCOM). You may request a copy of the personal data we hold about you by contacting us at genogram@fireguy.net.
- Correction: You can update your profile (name, email, password) in account settings. For other corrections, contact us.
- Deletion: You can delete your account and associated data via the account settings in the Service. You may also request deletion by emailing us; we will process requests in accordance with applicable law.
- Objection and restriction: Where applicable law gives you the right to object to or restrict certain processing, you may contact us to exercise those rights.
- Withdraw consent: Where we rely on your consent, you may withdraw it at any time; this will not affect the lawfulness of processing before withdrawal.
- Complaints: If you are in the European Economic Area (EEA) or United Kingdom, you have the right to lodge a complaint with a supervisory authority. If you are in California or other U.S. jurisdictions with similar laws, you may have additional rights (e.g., to know, delete, or opt out of “sale”/“sharing”; we do not sell or share personal information for cross-context behavioral advertising).
We will not discriminate against you for exercising your privacy rights. To exercise any of the above, contact us at genogram@fireguy.net.
7. International Transfers
Your information may be processed and stored in the United States or other countries where we or our service providers operate. If you are located outside that country, your data may be transferred to and processed in a jurisdiction with different data protection laws. We take steps to ensure your data is protected in accordance with this policy and applicable law (e.g., standard contractual clauses or other approved mechanisms where required).
8. Children
The Service is not directed to children under 13 (or the applicable age of digital consent). We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us at genogram@fireguy.net and we will take steps to delete it.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will post the updated policy on this page and update the “Last updated” date. Material changes may be communicated via the Service or by email where appropriate. Your continued use of the Service after the effective date constitutes acceptance of the updated policy. If you do not agree, you must stop using the Service and may delete your account.
10. Contact
For privacy-related questions, requests, or complaints, contact us at genogram@fireguy.net. We will respond in a reasonable time frame.